Project overview
This Azure sample demonstrates how an ASP.NET Web API can manually validate JWT access tokens issued by the Microsoft identity platform, including checks for audience, issuer, lifetime, tenant, and expected scopes. A WPF client calls the protected TodoList API, and the repository documents app registration, configuration, local execution, and deployment. Users must replace the sample tenant and application settings with values from their own identity environment.
Repository facts
- Primary language
- C#
- License
- MIT
- Repository updated
- Dec 31, 2025
- Default branch
- main
Resource types
Learning resource
Use cases
Security and privacySoftware development
Capabilities
Verification and evals
Audience
Developers